Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
707 results
halite preview

halite

GitHubparagonie/halite

High-level cryptography interface powered by libsodium

authenticationcryptographyencryption-decryption-tools
1.2k8 months ago
CVE-2024-4358 preview

CVE-2024-4358

GitHubsinsinology/cve-2024-4358

Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)

authenticationexploitationpayload-development+3
782 years ago
CVE-2024-3183-POC preview

CVE-2024-3183-POC

GitHubim10n/cve-2024-3183-poc

POC for CVE-2024-3183 (FreeIPA Rosting)

authenticationexploitationpassword-attacks+2
292 years ago
CVE-2026-40022 preview

CVE-2026-40022

GitHuboscerd/cve-2026-40022

Reproducer for CVE-2026-40022: Apache Camel camel-platform-http-main authentication bypass on non-root context paths

authenticationexploitationmisconfiguration+3
2 months ago
CVE-2022-31007-Python-POC preview

CVE-2022-31007-Python-POC

GitHubgregscharf/cve-2022-31007-python-poc

elabFTW < 4.1.0 - account lockout bypass and login brute force

authenticationexploitationpassword-attacks+3
23 years ago
CVE-2025-0108-SCAN preview

CVE-2025-0108-SCAN

GitHubfr4nc1stein/cve-2025-0108-scan

Detects an authentication bypass vulnerability in Palo Alto PAN-OS (CVE-2025-0108).

authenticationexploitationinformation-gathering+3
21 year ago
CVE-2026-24061 preview

CVE-2026-24061

GitHublucaspdiniz/cve-2026-24061

Vulnerability in GNU InetUtils telnetd Enables Remote Root Access

authenticationexploitationpenetration-testing+2
7 months ago
tough-cookie-patch-cve-2023-26136 preview

tough-cookie-patch-cve-2023-26136

GitHubguy2610/tough-cookie-patch-cve-2023-26136

RFC6265-compliant cookie parsing and CookieJar management library for Node.js, with CVE-2023-26136 security patch. Supports cookie creation,…

authenticationencryption-decryption-toolsgeneral-purpose-utilities+2
1 year ago
ZackAttack preview

ZackAttack

GitHuburbanesec/zackattack

Unveiled at DEF CON 20, NTLM Relaying to ALL THE THINGS!

authenticationexploitationinformation-gathering+6
26314 years ago
NamedPipePTH preview

NamedPipePTH

GitHubs3cur3th1ssh1t/namedpipepth

Pass the Hash to a named pipe for token Impersonation

authenticationimpersonation-toolslateral-movement+4
1465 years ago
mobileiron-exploit preview

mobileiron-exploit

GitHubsynacktiv/mobileiron-exploit

Python script to exploit the OWASSRF + TabShell chain on vulnerable Microsoft Exchange servers, leveraging Kerberos authentication for command…

authenticationauthentication-authorizationexploitation+3
92 years ago
CVE-2023-41508 preview

CVE-2023-41508

GitHubredblueteam/cve-2023-41508

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

authenticationexploitationmisconfiguration+3
13 years ago
Invoke-TheHash preview

Invoke-TheHash

GitHubkevin-robertson/invoke-thehash

PowerShell Pass The Hash Utils

authenticationlateral-movementnetwork-security+3
1.8k7 years ago
NegoExRelay preview

NegoExRelay

GitHubmorrubin/negoexrelay

Relays NegoEx/PKU2U Kerberos authentication to arbitrary targets, enabling credentialless authentication, command execution, SMB hash dumping, and…

authenticationexploitationimpersonation-tools+4
914 years ago
TOTPAuthenticate preview

TOTPAuthenticate

GitHubhannah-portswigger/totpauthenticate

This extension, for Burp Suite Enterprise Edition, utilizes session handling rules to provide a TOTP token to outgoing requests.

api-security-testingauthenticationpenetration-testing+1
92 years ago
CVE-2019-1619 preview

CVE-2019-1619

GitHubcipolone95/cve-2019-1619

Powershell Script to build token for CVE-2019-1619

authenticationexploitationpenetration-testing+3
1 year ago
casbin preview

casbin

GitHubapache/casbin

Authorization library enforcing ACL, RBAC, ABAC, and custom access-control models with RESTful matching and policy management APIs for applications…

api-securityauthenticationauthentication-authorization+2
20.4k4 days ago
RSA preview

RSA

GitHubrustcrypto/rsa

Pure Rust library for RSA public-key cryptography: key generation, PKCS#1 v1.5 and OAEP encryption/decryption, PSS signatures, plus key import/export.

authenticationcryptographyencryption-decryption-tools
6734 months ago
Previous1…8910…40Next